Chapter 6: Command line mode
384
NS3552-8P-2S-V2 User Manual
Syntax:
Security Network ACL Add [<ace_id>] [<ace_id_next>] [switch | (port <port_list>) |
(policy <policy>)] [<tagged>] [<vid>] [<tag_prio>] [<dmac_type>] [(etype [<etype>]
[<smac>] [<dmac>]) | (arp [<sip>] [<dip>] [<smac>] [<arp_opcode>] [<arp_flags>])
| (ip [<sip>] [<dip>] [<protocol>] [<ip_flags>]) | (icmp [<sip>] [<dip>] [<icmp_type>]
[<icmp_code>] [<ip_flags>]) | (udp [<sip>] [<dip>] [<sport>] [<dport>] [<ip_flags>]) |
(tcp [<sip>] [<dip>] [<sport>] [<dport>] [<ip_flags>] [<tcp_flags>])] [permit|deny]
[<rate_limiter>] [<port_copy>] [<mirror>] [<logging>] [<shutdown>]
Parameters:
<ace_id>
: ACE ID (1-256), default: Next available ID
<ace_id_next>
: Next ACE ID (1-256), default: Add ACE last
switch
: Switch ACE keyword
port
: Port ACE keyword
<port_list>
: Port list or 'all', default: All ports
policy
: Policy ACE keyword
<policy>
: Policy number (1-8)
<tagged>
: Tagged of frames: any|enable|disable
<vid>
: VLAN ID (1-4095) or 'any'
<tag_prio>
: VLAN tag priority (0-7) or 'any'
<dmac_type>
: DMAC type: any|unicast|multicast|broadcast
etype
: Ethernet Type keyword
<etype>
: Ethernet Type: 0x600 - 0xFFFF or 'any' but excluding,
0x800(IPv4) 0x806(ARP) and 0x86DD(IPv6)
<smac>
: Source MAC address (xx-xx-xx-xx-xx-xx) or 'any'
<dmac>
: Destination MAC address (xx-xx-xx-xx-xx-xx) or 'any'
arp
: ARP keyword
<sip>
: Source IP address (a.b.c.d/n) or 'any'
<dip>
: Destination IP address (a.b.c.d/n) or 'any'
<arp_opcode>
: ARP operation code: any|arp|rarp|other
<arp_flags>
: ARP flags: request|smac|tmac|len|ip|ether [0|1|any]
ip
: IP keyword
<protocol>
: IP protocol number (0-255) or 'any'
<ip_flags>
: IP flags: ttl|options|fragment [0|1|any]
icmp
: ICMP keyword
<icmp_type>
: ICMP type number (0-255) or 'any'
<icmp_code>
: ICMP code number (0-255) or 'any'
udp
: UDP keyword
<sport>
: Source UDP/TCP port range (0-65535) or 'any'
<dport>
: Destination UDP/TCP port range (0-65535) or 'any'
tcp
: TCP keyword
<tcp_flags>
: TCP flags: fin|syn|rst|psh|ack|urg [0|1|any]
permit
: Permit forwarding (default)
deny
: Deny forwarding
<rate_limiter>
: Rate limiter number (1-15) or 'disable'
<port_copy>
: Port list for copy of frames or 'disable'
<mirror>
: Mirror of frames: enable|disable
<logging>
: System logging of frames: log|log_disable
<shutdown>
: Shut down ingress port: shut|shut_disable
Summary of Contents for NS3552-8P-2S-V2
Page 1: ...NS3552 8P 2S V2 User Manual P N 1073552 EN REV B ISS 25JAN19 ...
Page 41: ...Chapter 3 Switch management NS3552 8P 2S V2 User Manual 39 ...
Page 73: ...Chapter 4 Web configuration NS3552 8P 2S V2 User Manual 71 ...
Page 147: ...Chapter 4 Web configuration NS3552 8P 2S V2 User Manual 145 ...
Page 511: ......